CVE-2015-8360: Atlassian Bamboo
Critical severity, CVSS 9.8. EPSS: 3% chance of exploitation in the next 30 days.
An unspecified resource in Atlassian Bamboo before 5.9.9 and 5.10.x before 5.10.0 allows remote attackers to execute arbitrary Java code via serialized data to the JMS port.
Affected products
- Atlassian Bamboo: version 2.3.1 only; version 2.4 only; version 2.4.1 only; version 2.4.2 only; version 2.4.3 only; version 2.5 only; …
Published 2016-02-08. Last modified 2026-06-17.